2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8853 | CRITICAL | 9.8 | 0.6% | Aug 11, 2025 | Official Document Management System developed by 2100 Technology has an Authentication Bypass vulnerability, allowing un... |
| CVE-2025-8839 | HIGH | 8.8 | 0.3% | Aug 11, 2025 | A vulnerability was found in jshERP up to 3.5. This issue affects some unknown processing of the file /jshERP-boot/user/... |
| CVE-2025-8838 | CRITICAL | 9.8 | 0.5% | Aug 11, 2025 | A vulnerability has been found in WinterChenS my-site up to 1f7525f15934d9d6a278de967f6ec9f1757738d8. This vulnerability... |
| CVE-2025-8837 | HIGH | 7.8 | 0.2% | Aug 11, 2025 | A vulnerability was identified in JasPer up to 4.2.5. This affects the function jpc_dec_dump of the file src/libjasper/j... |
| CVE-2025-8836 | LOW | 3.3 | 0.2% | Aug 11, 2025 | A vulnerability was determined in JasPer up to 4.2.5. Affected by this issue is the function jpc_floorlog2 of the file s... |
| CVE-2025-8747 | HIGH | 7.8 | 0.1% | Aug 11, 2025 | A safe mode bypass vulnerability in the `Model.load_model` method in Keras versions 3.0.0 through 3.10.0 allows an attac... |
| CVE-2025-8661 | MEDIUM | 6.1 | 0.2% | Aug 11, 2025 | A stored Cross-Site Scripting vulnerability (XSS) occurs when the server does not properly validate or encode the data e... |
| CVE-2025-8660 | CRITICAL | 9.8 | 0.3% | Aug 11, 2025 | Privilege escalation occurs when a user gets access to more resources or functionality than they are normally allowed. |
| CVE-2025-8835 | MEDIUM | 5.5 | 0.2% | Aug 11, 2025 | A vulnerability was found in JasPer up to 4.2.5. Affected by this vulnerability is the function jas_image_chclrspc of th... |
| CVE-2025-8834 | LOW | 2.4 | 0.3% | Aug 11, 2025 | A vulnerability has been found in JCG Link-net LW-N915R 17s.20.001.908. Affected is an unknown function of the file /wir... |
| CVE-2025-8833 | HIGH | 8.8 | 0.9% | Aug 11, 2025 | A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This issue a... |
| CVE-2025-8832 | HIGH | 8.8 | 0.9% | Aug 11, 2025 | A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This vulnera... |
| CVE-2025-7965 | MEDIUM | 4.3 | 0.1% | Aug 11, 2025 | The CBX Restaurant Booking WordPress plugin through 1.2.1 does not have CSRF check in place when updating its settings, ... |
| CVE-2025-8854 | CRITICAL | 9.8 | 0.5% | Aug 11, 2025 | Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to ... |
| CVE-2025-8831 | HIGH | 8.8 | 0.9% | Aug 11, 2025 | A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This affects the ... |
| CVE-2025-8830 | HIGH | 8.8 | 8.3% | Aug 11, 2025 | A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by ... |
| CVE-2025-8829 | HIGH | 8.8 | 8.3% | Aug 11, 2025 | A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by ... |
| CVE-2025-8828 | HIGH | 8.8 | 8.3% | Aug 11, 2025 | A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected is ... |
| CVE-2025-8827 | HIGH | 8.8 | 8.3% | Aug 11, 2025 | A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This issue affect... |
| CVE-2025-27577 | HIGH | 7 | 0.1% | Aug 11, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition. |
| CVE-2025-27562 | MEDIUM | 5.5 | 0.1% | Aug 11, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory. |
| CVE-2025-27536 | MEDIUM | 5.5 | 0.1% | Aug 11, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through type confusion. |
| CVE-2025-27128 | HIGH | 7.8 | 0.1% | Aug 11, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through use after free. |
| CVE-2025-26690 | MEDIUM | 5.5 | 0.1% | Aug 11, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. |
| CVE-2025-25278 | HIGH | 7 | 0.1% | Aug 11, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in tcb through race condition. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now